General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4121 Views
  • 0 replies
  • 0 Likes

URL Filtering Activation

Hi,URL Filtering Activation.I have activated the URL Filtering Lic, but still when I click on Objects > URL Filteringit shows me " License required for URL Filtering to function "Also when I go into devices, and Licensing, i see the following.Date IssuedNovember 04, 2010 Date ExpiresNovember 04, 2011 DescriptionBrightCloud URL Filtering Activ...

ta185020 by Not applicable
  • 6604 Views
  • 9 replies
  • 0 Likes

Resolved! Captive Portal Ports in PANOS 4.0

Hello everybody,When enabling Captive Portal either in vWire or Layer3 mode, the Layer3 interface that is used for redirection and has the "Response Pages" option enabled, is listening to certain ports for Captive portal.Let's say that the configured hostname for redirection and for NTLM host is "palo alto" and is pointing to the IP address 10.0...

ggoudr by L2 Linker
  • 3996 Views
  • 1 replies
  • 0 Likes

Which ports are being used by PAN?

When you for example set an url-category into "continue" the continue response-page is issued through tcp 6079.However there is no need to setup a policy for this traffic since the PAN will handle this on its own.But when I enabled captive portal with ntlm-auth I noticed blocked traffic towards the L3 interface of the PAN at tcp 6080 and 7080.Wh...

rps by L3 Networker
  • 5177 Views
  • 2 replies
  • 0 Likes

Resolved! Client IPSEC VPNs

Hi, Can anyone confirm whether IPSEC VPNs(Client) be integrated with active directory for authentication ?

Disabling server sessions on PAN agent ?

Hello,In pan-agent, is it possible to disable server sessions monitoring and to work only on security logs, is there any option in GUI or in configuration file of the pan-agent that can be modified to reach this bheaviour?Regard's

asia by L3 Networker
  • 3737 Views
  • 3 replies
  • 0 Likes

Resolved! SSL Certificates

Hi Guys,Hopeing you can answer a couple of questions I have regarding SSL certificates.1) How does the Palo Alto device itself handle SSL when it is doing interception? Can you set that it would block traffic when for example, an online banking sites certificate has expired, force OCSP, etc.2) How does the Palo Alto maintain its own list of CAs,...

security audit standard for PAN OS

Has anyone developed a PAN-specific security audit standard that can be used for verifying the efficacy of PAN firewalls as a firewall / IPS control? If so, can you share? Thanks

Resolved! Recommended way to do whitelists/allow lists?

We've just purchased a PA box.AIUI the recommended way to do a rule that allows (for example) all PC's access to www.domain.com would be to create a URL filtering profile that blocks all categories, and then to add www.domain.com to the allow list of that URL profile.Then create a rule (likely towards the bottom because of the "block" action for...

URL Categories different in Panorama than PA Firewall

I have noticed some of the URL categories are different in my panorama box when compared to my PA firewall when creating custom reports. I have verified they are running the same PAN os level (3.1.8). This makes creating custom reports on my panorama difficult when trying to filter on these categories since my PA4020 is logging these as a differ...

Reporting issues - porn sites

I got a very simple request this morning.Show me logs of user X going to pornography sites.I have 2 PA-4020s and Panorama. I know this traffic occured but cant generate it in report for anywhere.This is a very critical and basic need.Can anyone share techniques that help them get these reports?Thanks,Justin

jhickey by L3 Networker
  • 7243 Views
  • 8 replies
  • 0 Likes

IPv6 Traffic Report

I have been trying to create a traffic report that summarizes traffic over native IPv6.Not much progress - any recommendations for creating IPv6 reports would be appreciated.Thanks!Respectfully,Peter RoundsNetwork EngineerSyracuse Universityphrounds@syr.edu

phrounds by Not applicable
  • 3173 Views
  • 2 replies
  • 0 Likes

File blocking not working with Hotmail

I've tried to use the file blocking option to ban attachments on Hotmail. But it's not working on me.1. Created file blocking profile for hotmail application, certain file types and chose both directions -> block.2. Created security rule with my IP as a source and hotmail, ssl, web-browsing in applications (added these after the warning on co...

  • 24336 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels